Action1

Action1

Action1 offers cloud-based patch management, vulnerability discovery, and automated remediation to prevent security breaches and ransomware attacks. Their solutions support endpoint security, IT productivity, and remote monitoring for IT departments, S...

Internet Software & Services
11-50

Description

  • Support PSIRT and vulnerability handling activities.
  • Validate, triage, track, and coordinate security reports.
  • Provide practical remediation guidance to engineering teams.
  • Help validate security fixes and reduce product security risks.
  • Review code, APIs, and architecture to identify security issues early.
  • Conduct threat modeling and security design reviews.
  • Improve security automation in engineering workflows.
  • Support SAST, SCA, secrets scanning, and other security controls.
  • Maintain SBOMs, dependency visibility, and remediation follow-up.
  • Support security assessments, vulnerability assessments, and penetration testing.
  • Maintain vulnerability handling playbooks, product security procedures, and incident response runbooks.

Requirements

  • 3+ years of experience in product security, application security, DevSecOps, or a related cybersecurity field.
  • Strong software engineering background and ability to work effectively with engineering teams.
  • Understanding of application, API, infrastructure, and software supply chain security risks.
  • Experience applying cloud security concepts and practices.
  • Understanding of IAM, network security, logging, monitoring, and secure cloud architecture patterns.
  • Familiarity with vulnerability management, incident response, security assessments, and secure SDLC practices.
  • Experience with threat modeling and security design reviews.
  • Strong communication skills, including professional communication with external researchers and vendors.
  • Ability to work independently and as part of a team in a fast-moving environment.
  • Hands-on experience with AWS security controls, best practices, and architecture patterns.
  • Hands-on experience with C++ or JavaScript.
  • Experience with security testing and automation using scripting, APIs, CI/CD pipelines, or specialized tools.
  • Experience with threat modeling for SaaS, API, cloud, or on-prem product components.
  • Experience with SBOM generation, dependency visibility, or software supply chain security.
  • Genuine interest in cybersecurity and motivation to grow as a product security expert.

Benefits

  • Fully remote work environment.
  • Opportunity to work on a real security product used by IT and security teams.
  • High ownership and direct impact on product security practices.
  • Close collaboration with engineering, product, and security teams.
  • Fast-growing software company with low bureaucracy and practical decision-making.
  • Opportunity to improve security processes, automation, and engineering workflows.
  • Supportive team that values clear thinking, ownership, and continuous learning.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Platform Engineer - Navy (FedD174/FedD175)

DefenseUnicorns 51-250 Internet Software & Services

Defense Unicorns is hiring a Platform Engineer for its Navy Delivery team to support secure platform, DevOps, and application security work for U.S. government missions.

Agile AWS CI/CD GitOps Go Helm Kubernetes Linux Pulumi Unix YAML
18 hours, 31 minutes ago

Product Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Product Security Engineer in the UK to secure advanced defense technologies, including AI systems, command and control platforms, aerospace vehicles, and long-range sensors.

C C++ Cybersecurity Embedded Systems Go IoT Linux Network Security Python Rust
1 day, 18 hours ago

Applications Security Specialist

Marathon Talent 1-10 Human Resources

R2 is hiring an Application Security Engineer to help secure its fintech platform and infrastructure as it expands financial services for SMBs across Latin America.

Burp Suite CI/CD Go Kubernetes Microservices Penetration Testing
1 day, 19 hours ago

Application Security Engineer — Secure Mission Systems

Rackner 11-50 Internet Software & Services

Rackner is hiring a remote Application Security Engineer to strengthen secure software for Department of Defense mission systems through hands-on testing, vulnerability remediation, and secure delivery support.

CI/CD Git GitLab Kubernetes OpenShift
2 days, 17 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers